SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-92040

UNKNOWN · CVSS N/A EPSS 0.15%

Source: NVD + CISA KEV + EPSS · Published 2026-09-15 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A use-after-free vulnerability in the JavaScript: WebAssembly component affects Firefox and Java, potentially allowing attackers to execute arbitrary code or crash the application. Users and organizations relying on these platforms should prioritize updates to Firefox version 156 or later to mitigate the risk associated with this flaw.

CVE
CVE-2026-92040
Severity
UNKNOWN
CVSS
N/A
EPSS
0.15%
Firefox Java

Original NVD Description

Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 156 and Thunderbird 156.